Open
Cached
·
just now
76/100
SECURITY SCORE
Certificate Information
Subject
CN=workingwi.org
Issuer
C=US, O=Amazon, CN=Amazon RSA 2048 M04
Valid From
September 10, 2025
Valid Until
October 09, 2026
319 days
Public Key
RSA
2048 bit
Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
B1:79:0E:88:52:FC:69:ED:0A:4B:BE:60:B3:1B:0E:A0:4B:09:E9:72:05:70:95:51:19:CD:B7:02:20:4F:85:20
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
Forward Secrecy
Limited
(Check cipher configuration)
Warnings
- • TLS 1.3 is not supported (recommended)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Configured
(Restricts certificate issuance)
Current Issuer
Authorized
(Matches CAA policy)
Authorized CAs
Incident Reporting
mailto:[email protected]
Recommendations
- • Consider using critical flag (flags=128) for stricter CAA enforcement
- • Consider adding 'issuewild' records to control wildcard certificate issuance
Subject Alternative Names
96 domains
ajwresources.wisc.edu
cicadas.wisc.edu
creativewriting.wisc.edu
ctlm.wisc.edu
derc.wisc.edu
humanecology.wisc.edu
ifss.wisc.edu
info.wisc.edu
math.wisc.edu
mwtme.wisc.edu
soilmir.wisc.edu
ssrs.wisc.edu
wugm.wisc.edu
*.ajwresources.wisc.edu
*.cicadas.wisc.edu
*.creativewriting.wisc.edu
*.ctlm.wisc.edu
*.derc.wisc.edu
*.humanecology.wisc.edu
*.ifss.wisc.edu
*.info.wisc.edu
*.math.wisc.edu
*.mwtme.wisc.edu
*.soilmir.wisc.edu
*.ssrs.wisc.edu
*.wugm.wisc.edu
advising.humanecology.wisc.edu
agwater.cals.wisc.edu
aigil.radiology.wisc.edu
alternativecrops.horticulture.wisc.edu
baes.radiology.wisc.edu
bcg.biostat.wisc.edu
bmiintranet.biostat.wisc.edu
commguide.businesscommunication.wisc.edu
dudleylab.che.wisc.edu
dynamicwalking.engr.wisc.edu
fungi.cals.wisc.edu
hfeb.engr.wisc.edu
idc.ls.wisc.edu
kbrapersymposium.bact.wisc.edu
kuchnialab.nutrisci.wisc.edu
lirp.radiology.wisc.edu
mccoy.labs.wisc.edu
movin.nursing.wisc.edu
nancelab.crb.wisc.edu
prep.cals.wisc.edu
qiml.radiology.wisc.edu
recruitment.psychiatry.wisc.edu
register.ssec.wisc.edu
socialandmorallearninglab.psych.wisc.edu
sousa.neuro.wisc.edu
thinkblasto.medicine.wisc.edu
wellex.labs.wisc.edu
*.advising.humanecology.wisc.edu
*.agwater.cals.wisc.edu
*.aigil.radiology.wisc.edu
*.alternativecrops.horticulture.wisc.edu
*.baes.radiology.wisc.edu
*.bcg.biostat.wisc.edu
*.bmiintranet.biostat.wisc.edu
*.commguide.businesscommunication.wisc.edu
*.dudleylab.che.wisc.edu
*.dynamicwalking.engr.wisc.edu
*.fungi.cals.wisc.edu
*.hfeb.engr.wisc.edu
*.idc.ls.wisc.edu
*.kbrapersymposium.bact.wisc.edu
*.kuchnialab.nutrisci.wisc.edu
*.lirp.radiology.wisc.edu
*.mccoy.labs.wisc.edu
*.movin.nursing.wisc.edu
*.nancelab.crb.wisc.edu
*.prep.cals.wisc.edu
*.qiml.radiology.wisc.edu
*.recruitment.psychiatry.wisc.edu
*.register.ssec.wisc.edu
*.socialandmorallearninglab.psych.wisc.edu
*.sousa.neuro.wisc.edu
*.thinkblasto.medicine.wisc.edu
*.wellex.labs.wisc.edu
adaptedfitness.kinesiology.education.wisc.edu
*.adaptedfitness.kinesiology.education.wisc.edu
haqast.org
*.haqast.org
lakesuperiornerr.org
*.lakesuperiornerr.org
organicvegetableapprenticeship.org
*.organicvegetableapprenticeship.org
ssti.us
*.ssti.us
uwdiscoveryfarms.org
*.uwdiscoveryfarms.org
wisconsinimmigrantjourneys.org
*.wisconsinimmigrantjourneys.org
workingwi.org
*.workingwi.org
Other domains in certificate